Hacker News new | ask | show | jobs
by chris_money202 35 days ago
Enterprise will always choose the less risky option so if there is either-or its vetted extensions only.

For consumer it's kind of already like this in a way, there are "verified" extension providers.

Overall, I think this is just going to lead to a lot more scrutiny. I'm sure one of the first things asked when this was discovered was how can it be prevented and I'm sure one of the first answers was get VsCode to lock down extensions. Enterprises love the easy answers